Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-19837
HistoryDec 04, 2018 - 9:29 a.m.

Code injection

2018-12-0409:29:00
PRIOn knowledge base
www.prio-n.com
3

6.3 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

70.4%

In LibSass prior to 3.5.5, Sass::Eval::operator()(Sass::Binary_Expression*) inside eval.cpp allows attackers to cause a denial-of-service resulting from stack consumption via a crafted sass file, because of certain incorrect parsing of ‘%’ as a modulo operator in parser.cpp.

CPENameOperatorVersion
libsasslt3.5.5

6.3 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

70.4%